Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

257 advisories

Loading
mercurius has Uncaught Exception when using subscriptions Moderate
CVE-2023-22477 was published for mercurius (npm) Jan 9, 2023
marcolanaro Credited to marcolanaro
Uncaught exception in engine.io Moderate
CVE-2022-41940 was published for engine.io (npm) Nov 21, 2022
G-Rath Credited to G-Rath
fastify/websocket vulnerable to uncaught exception via crash on malformed packet High
CVE-2022-39386 was published for @fastify/websocket (npm) Nov 7, 2022
marcolanaro Credited to marcolanaro, ramonsnir, and tdunlap607 ramonsnir ramonsnir
tdunlap607 tdunlap607
Keylime: unhandled exceptions could lead to invalid attestation states High
CVE-2022-3500 was published for Keylime (pip) Oct 28, 2022
galmasi Credited to galmasi
Unexpected server crash in Next.js Moderate
CVE-2022-36046 was published for next (npm) Aug 30, 2022
Uncaught Exception (due to a data race) leads to process termination in Waitress High
CVE-2022-31015 was published for waitress (pip) Jun 2, 2022
oakkitten Credited to oakkitten
Camaleon CMS vulnerable to Uncaught Exception Moderate
CVE-2021-25971 was published for camaleon_cms (RubyGems) May 24, 2022
Mattermost Server vulnerable to Denial of Service through `@` character prefix inserted into JavaScript field names High
CVE-2017-18871 was published for github.com/mattermost/mattermost-server (Go) May 24, 2022
Crash in HeaderParser in dicer High
CVE-2022-24434 was published for dicer (Maven) May 21, 2022
dloetzke Credited to dloetzke
Undertow Uncaught Exception vulnerability Moderate
CVE-2016-7046 was published for io.undertow:undertow-core (Maven) May 17, 2022
Crash when decoding malformed HTTP requests or malformed JSON payload High
CVE-2018-1330 was published for org.apache.mesos:mesos (Maven) May 14, 2022
Uncaught Exception in bignum High
CVE-2022-25324 was published for bignum (npm) May 7, 2022
Denial-of-Service when binding invalid parameters in sqlite3 High
CVE-2022-21227 was published for sqlite3 (npm) Apr 28, 2022
cristianstaicu Credited to cristianstaicu
Denial of Service vulnerability in @podium/layout and @podium/proxy High
CVE-2022-24822 was published for @podium/layout (npm) Apr 7, 2022
Uncaught Exception in zip4j Moderate
CVE-2022-24615 was published for net.lingala.zip4j:zip4j (Maven) Feb 25, 2022
srikanth-lingala Credited to srikanth-lingala
Panic mishandled in libpulse-binding High
CVE-2019-25055 was published for libpulse-binding (Rust) Jan 6, 2022
ProTip! Advisories are also available from the GraphQL API